Vulnerabilities > Uncontrolled Recursion
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-10-18 | CVE-2018-18484 | Uncontrolled Recursion vulnerability in GNU Binutils 2.31 An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. | 5.5 |
2018-10-06 | CVE-2018-18020 | Uncontrolled Recursion vulnerability in Qpdf Project Qpdf 8.2.1 In QPDF 8.2.1, in libqpdf/QPDFWriter.cc, QPDFWriter::unparseObject and QPDFWriter::unparseChild have recursive calls for a long time, which allows remote attackers to cause a denial of service via a crafted PDF file. | 3.3 |
2018-09-04 | CVE-2018-16426 | Uncontrolled Recursion vulnerability in Opensc Project Opensc Endless recursion when handling responses from an IAS-ECC card in iasecc_select_file in libopensc/card-iasecc.c in OpenSC before 0.19.0-rc1 could be used by attackers able to supply crafted smartcards to hang or crash the opensc library using programs. | 4.3 |
2018-08-23 | CVE-2018-1158 | Uncontrolled Recursion vulnerability in Mikrotik Routeros Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a stack exhaustion vulnerability. | 6.5 |
2018-07-09 | CVE-2018-1000618 | Uncontrolled Recursion vulnerability in Eosio Project EOS EOSIO/eos eos version after commit f1545dd0ae2b77580c2236fdb70ae7138d2c7168 contains a stack overflow vulnerability in abi_serializer that can result in attack eos network node. | 9.8 |
2018-05-31 | CVE-2018-11597 | Uncontrolled Recursion vulnerability in Espruino Espruino before 1.99 allows attackers to cause a denial of service (application crash) with a user crafted input file via a Buffer Overflow during syntax parsing because of a missing check for stack exhaustion with many '{' characters in jsparse.c. | 5.5 |
2018-05-18 | CVE-2018-11254 | Uncontrolled Recursion vulnerability in Podofo Project Podofo 0.9.5 An issue was discovered in PoDoFo 0.9.5. | 5.5 |
2018-05-18 | CVE-2018-8015 | Uncontrolled Recursion vulnerability in Apache ORC In Apache ORC 1.0.0 to 1.4.3 a malformed ORC file can trigger an endlessly recursive function call in the C++ or Java parser. | 7.5 |
2018-04-10 | CVE-2018-9996 | Uncontrolled Recursion vulnerability in GNU Binutils 2.30 An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. | 5.5 |
2018-04-10 | CVE-2018-9918 | Uncontrolled Recursion vulnerability in multiple products libqpdf.a in QPDF through 8.0.2 mishandles certain "expected dictionary key but found non-name object" cases, allowing remote attackers to cause a denial of service (stack exhaustion), related to the QPDFObjectHandle and QPDF_Dictionary classes, because nesting in direct objects is not restricted. | 7.8 |